@sherminator,

Just because the network admins at KU did not get things right does not mean proxies are inefficient.
You cannot achieve what a proxy server does by using DNS! That is a very new one to me, but from their intended functionalities, I don't see how to even start comparing them. DNS is for name resolution and proxy is for caching content (forward proxy), or masking the source of content (reverse proxy). Proxy servers can act as rudimentary content filters, but true content filtering is achieved by other applications sitting between the proxy and the Internet or whatever source of content.

I therefore beg to find your response quite misleading!
Oh, and you already read too much into the initial question. I'd have simply limited the answer to the question asked and keep out personal opinions, unless sought, as they are irrelevant at this point:-)


On 18 February 2013 10:34, The sherminator <steve.kim41@gmail.com> wrote:

you can set up a transparent proxy. you do this by routing all traffic hitting the gateway to the proxy server... this is actually the ideal setup everyone should use. if you're using squid as your proxy, there are tonnes of tutorials online for this.

.... however, i tend to argue against proxy servers, and instead advice on playing around with DNS servers. despite the caching advantage, proxy servers are largely inefficient and end up giving everyone quirky browsing experience if used by many people. if you want to block facebook or porn, why not play around with you're DNS server, and make those domains point to google.com or an internal web server.

i noticed this issue while in KU. their proxy server is set to block youtube, download sites and porn... however, it randomly ends up blocking just about any site, or a site's css resources (making sites look ugly), and sometimes shows u a KU branded page blocking some site. speeds are also eratic.... and interestingly, a download may take 30  seconds to start, but when it does, u get amazing speeds. all of these indicate congestion, and lack of a clustered setuo for loaf balancing.... anyways, my point is that plain routers are more efficient than proxies, and a custom DNS can meet a proxy's goals. and besides, the restrictions imposed by a proxy can just as easily be by passed as those imposed by a "mean" DNS server, so there's no real disadvantage for switching.

On Feb 18, 2013 10:12 AM, "Garr Patronas" <garr.patronas@gmail.com> wrote:
Morning Skunks,

For the Windows geeks out there,
Setup: I have a LAN with XP & Vista workstations.
Problem: I need to force all network traffic via a proxy (for reasons beyond my control, we can't place the proxy "directly" between the LAN and router, so the proxy is part of the LAN).
Setting the same in the browser settings is not "fool-proof"

The only possibility is to force all LAN stations to pass through the proxy...somehow...
Is there a fool-proof way to set the default proxy/route in Windows?
Also, how do I restrict LIMITED users from changing the LAN settings?

All your help will be appreciated.

G.Patronas.


_______________________________________________
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------

Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke

_______________________________________________
skunkworks mailing list
skunkworks@lists.my.co.ke
------------
List info, subscribe/unsubscribe
http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks
------------

Skunkworks Rules
http://my.co.ke/phpbb/viewtopic.php?f=24&t=94
------------
Other services @ http://my.co.ke



--
Best regards,
Odhiambo WASHINGTON,
Nairobi,KE
+254733744121/+254722743223
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _
I can't hear you -- I'm using the scrambler.